Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 56 of 155|Showing 2751-2800 of 7749
beyondwords.io favicon

BeyondWords

beyondwords.io

57
TechnologyUnited KingdommediumMEDIUM

BeyondWords is a technology company specializing in AI-driven audio content management systems tailored for publishers. Their platform offers voice cloning, audio article generation, customizable audio players, analytics, monetization, and integration capabilities. Positioned as a trusted solution for media companies and publishers, BeyondWords serves a medium-sized market segment with a focus on enhancing audience engagement through audio. The company is legally registered as LSTN LTD in the UK and was founded in 2021, reflecting a modern and innovative business model in the AI audio space. Technically, BeyondWords employs a modern tech stack including the Astro framework, Cloudflare DNS and CDN services, and analytics tools such as PostHog and Fathom. The website is well-optimized for performance, mobile responsiveness, and accessibility, demonstrating a high level of digital maturity. Hosting and DNS configurations are robust, though DNSSEC is not enabled, which is a minor security gap. From a security perspective, the site enforces HTTPS and uses clientTransferProhibited domain status to prevent unauthorized transfers. While explicit security headers are not fully visible in the HTML, the overall SSL configuration is excellent. The absence of a published security policy or incident response contact is a gap, as is the lack of a cookie consent mechanism, which impacts privacy compliance. No vulnerabilities or suspicious activities were detected. Overall, BeyondWords presents a low-risk profile with strong business credibility and technical implementation. Strategic recommendations include enabling DNSSEC, publishing a security policy and incident response contacts, and implementing a cookie consent mechanism to enhance GDPR compliance and user trust.

15
53
17
40
75
75
100
aiaudiocmspublishersvoicecloning+3 more
Astro v5.4.3Cloudflare DNSPostHog analyticsFathom analytics+1
2025-09-05T10:55:38.964Z
enlyft.com favicon

Enlyft

enlyft.com

74
TechnologyUnited StatesmediumMEDIUM

Enlyft is a technology company specializing in AI-powered B2B customer acquisition and account intelligence solutions. Their platform leverages proprietary data and AI models to help sales, marketing, and partner teams prioritize accounts and accelerate go-to-market strategies. The company is positioned as a trusted partner to major technology firms and their ecosystems, offering services such as custom propensity modeling, data enrichment, and partner activation. The website reflects a mature digital presence with professional design, clear messaging, and strong trust signals including customer testimonials and partner logos. Technically, the website is built on Webflow CMS and integrates multiple modern analytics and marketing tools such as Google Analytics, Google Tag Manager, LinkedIn Insight Tag, and Bing Ads. Hosting and DNS services are provided via Cloudflare, ensuring good performance and security. The site is mobile optimized and accessible, with comprehensive SEO and privacy compliance measures including cookie consent mechanisms and detailed privacy and terms policies. From a security perspective, the site enforces HTTPS with strong domain registration protections but lacks publicly disclosed security policies or incident response contacts. No vulnerabilities or exposed sensitive data were detected in the analysis. The domain registration data is consistent with the business profile, supporting legitimacy. Overall, the security posture is good but could be enhanced by enabling DNSSEC and publishing a security.txt file. The overall risk assessment is low with no critical issues identified. Strategic recommendations include improving DNS security, formalizing security policies, and continuous monitoring of third-party scripts. The website and business demonstrate a high level of professionalism, trustworthiness, and compliance suitable for their market segment.

80
83
17
85
57
85
100
b2baiaccountintelligencesalesmarketing+3 more
Webflow CMSGoogle AnalyticsGoogle Tag ManagerGoogle Optimize+9

Partner Domains:

pax8.com
partner
microsoft.com
partner

+3 more partners

2025-09-05T10:52:02.856Z
esahubble.org favicon

STScI

esahubble.org

61
GovernmentUnited StatesmediumMEDIUM

ESA/Hubble.org is the official web portal for the European Space Agency's Hubble Space Telescope outreach and educational activities, managed by the Space Telescope Science Institute (STScI). The website provides comprehensive scientific news, stunning images, videos, and educational resources aimed at a broad audience including scientists, educators, and the general public. It holds a strong market position as an authoritative source for Hubble-related content and space science education. The business model is non-commercial, focusing on public outreach and education. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and integrates with major social media platforms and video services such as YouTube and Facebook. It is hosted behind Cloudflare DNS and CDN services, ensuring good performance and availability. The site is mobile-optimized and features clear navigation and professional design, contributing to an excellent user experience. From a security perspective, the site uses HTTPS with proper domain registration locks, but lacks DNSSEC and some recommended security headers. No critical vulnerabilities or exposed sensitive data were detected. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism or GDPR-specific disclosures. The WHOIS data is consistent with the organization's identity and supports the site's legitimacy. Overall, ESA/Hubble.org is a high-quality, trustworthy, and professionally maintained website with strong content and business credibility. Strategic improvements in privacy compliance and security headers would further enhance its posture.

15
53
17
70
65
80
100
astronomyspaceesahubblescience+2 more
HTML5CSS3JavaScriptjQuery+4
2025-09-05T08:40:38.744Z
myyu.ca favicon

Yorkville University

myyu.ca

55
EducationCanadamediumMEDIUM

Yorkville University operates the MyYU portal as a digital access point for its students and university community. The website serves as a login gateway and informational hub, reflecting the university's presence across multiple Canadian provinces. The business is positioned as a medium-sized educational institution with a focus on providing accessible higher education services. The website's content and branding are consistent with the university's identity, targeting students and academic stakeholders. Technically, the site is built on WordPress using Elementor and several popular plugins, with Cloudflare DNS services and SSL properly configured, indicating a modern and secure infrastructure. However, DNSSEC is not enabled, and some security headers are missing, suggesting room for improvement in security hardening. Privacy compliance is partially addressed with a comprehensive privacy policy linked on the main university domain, but cookie consent mechanisms are absent. No incident response or security policy pages were found, which could be enhanced to improve trust and compliance. Overall, the website is professional, secure, and trustworthy, with moderate user tracking via Google Tag Manager. The domain registration data aligns well with the business, supporting legitimacy and operational consistency.

15
53
2
40
75
70
100
educationuniversitystudentportalyorkvilleuniversitywordpress+1 more
WordPressElementorYoast SEOModern Events Calendar+3
2025-09-05T08:35:59.358Z
M

MyAlaskaTix

myalaskatix.com

53
MediaUnited StatessmallMEDIUM

MyAlaskaTix is a specialized ticketing platform focused on serving the Alaskan community by providing ticketing and event promotion services for local events, classes, and workshops. Hosted by Anchorage Daily News, it leverages local media reach to offer marketing support and access to a targeted audience. The platform is positioned as a local niche player with a clear focus on Alaskan events, supporting community engagement and event visibility. Technically, the website employs modern web technologies including Tailwind CSS, StimulusJS, Turbo, and is hosted with Cloudflare DNS and Amazon S3 for assets. The site is well-optimized for performance and mobile responsiveness, with good SEO practices and structured data markup enhancing discoverability and user experience. From a security perspective, the site uses HTTPS and Cloudflare DNS but lacks DNSSEC and explicit security headers in the HTML source. Cookie consent is implemented via Cookiebot, indicating some privacy compliance efforts. However, no privacy policy, terms of service, or vulnerability disclosure mechanisms were found, which are areas for improvement. Overall, the website is professional, trustworthy, and well-suited for its target audience, but could enhance its security posture and privacy compliance to better align with best practices and regulatory requirements.

55
50
2
55
-
80
100
ticketingeventsalaskalocalmedia+1 more
Tailwind CSSStimulusJSTurbo (Hotwired)Rails UJS+4

Partner Domains:

app.evvnt.events
partner
clarksapple.com
partner

+3 more partners

2025-09-05T07:32:47.803Z
jekyllthemes.io favicon

Privacy service provided by Withheld for Privacy ehf

jekyllthemes.io

56
TechnologyIcelandsmallMEDIUM

JekyllThemes.io is a specialized online directory offering a curated collection of themes, templates, and resources for building websites using the Jekyll static site generator. Established in 2015, the site targets developers, designers, and tech enthusiasts seeking both free and premium Jekyll themes. The business operates as a niche marketplace, providing value through theme curation and discovery, positioning itself as a trusted resource within the Jekyll community. Technically, the website employs modern web technologies including HTML5, CSS3, JavaScript, and jQuery, with integrations such as Owl Carousel for UI components and Fathom Analytics for privacy-focused user tracking. Hosting and DNS services are managed via Cloudflare, enhancing performance and security. The site demonstrates good mobile optimization and SEO practices, although accessibility features are basic. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks DNSSEC and security headers, and does not publish explicit security or incident response policies. The use of WHOIS privacy protection is justified given the business type and size. Overall, the security posture is moderate but could be improved with additional hardening measures. The overall risk assessment is low, with no signs of malicious content or vulnerabilities. Strategic recommendations include enabling DNSSEC, implementing security headers, and publishing clear security policies to enhance trust and compliance. The site maintains a professional appearance and trustworthy reputation within its niche.

15
53
2
75
75
50
100
jekyllthemestemplatesdirectoryblog+5 more
HTML5CSS3JavaScriptjQuery 3.5.1 slim+3
2025-09-05T06:22:03.372Z
B

Become a Writer Today

becomeawritertoday.com

61
EducationN/asmallMEDIUM

Become a Writer Today is a niche educational platform focused on providing resources such as podcasts, videos, and courses to help individuals improve their writing skills. The website targets aspiring writers and those interested in the craft of writing. The business operates primarily as a content and educational resource provider, with a small-scale presence and a consistent brand identity. The domain has been registered since 2014, indicating a mature presence in its niche. Technically, the website is built on WordPress using the Astra theme and integrates multiple third-party analytics and advertising services, including Google Analytics, Microsoft Clarity, Facebook Pixel, and AdThrive for monetization. Hosting appears to be via Pressidium CDN, supporting moderate performance and good mobile optimization. Security posture is adequate with HTTPS enabled and domain transfer protections in place; however, DNSSEC is not enabled and security headers are missing, which are areas for improvement. Privacy compliance is weak due to the absence of visible privacy and cookie policies or consent mechanisms. No explicit contact information or security incident response details are provided, limiting transparency. Overall, the website is functional and professional but would benefit from enhanced security and privacy practices to improve trust and compliance.

15
70
17
75
62
75
100
educationwritingpodcastsvideoscourses+1 more
WordPressGoogle AnalyticsMicrosoft ClarityFacebook Pixel+1
2025-09-05T05:12:08.980Z
hygraph.com favicon

Hygraph

hygraph.com

71
TechnologyGermanyenterpriseMEDIUM

Hygraph is a leading enterprise-grade GraphQL-native headless CMS platform founded in 2017 and headquartered in Germany. It offers a comprehensive SaaS solution enabling developers and content teams to manage, distribute, and localize content efficiently across multiple channels and global markets. The company is recognized for its ease of implementation, developer-friendly APIs, and robust content modeling capabilities, positioning itself strongly in the technology sector with a focus on enterprise customers. Technically, Hygraph employs modern web technologies including React and Next.js, hosted likely on Vercel with Cloudflare DNS services. The website demonstrates excellent performance, mobile optimization, and SEO practices, supported by structured data and rich metadata. Integration of Google Tag Manager indicates moderate user tracking aligned with privacy compliance. From a security perspective, Hygraph enforces HTTPS, employs standard security headers, and maintains a secure infrastructure certified under AICPA and GDPR frameworks. While no critical vulnerabilities or exposed sensitive data were detected, enabling DNSSEC and publishing a dedicated security policy could further enhance their security posture. Overall, Hygraph presents a professional, trustworthy, and technically mature online presence with strong business credibility and compliance adherence. The risk profile is low, with recommendations focusing on incremental security and transparency improvements.

75
85
2
85
72
60
100
headlesscmsgraphqlcontentmanagemententerprisesoftwareapi-first+2 more
ReactNext.jsGraphQLCloudflare DNS+2
2025-09-05T04:02:24.758Z
graphcms.com favicon

Hygraph

graphcms.com

71
TechnologyGermanyenterpriseMEDIUM

Hygraph is a leading technology company specializing in a next-generation GraphQL-native headless CMS platform designed to empower developers and content teams alike. Positioned as a top-rated solution in the headless CMS market, Hygraph offers robust content APIs, flexible content modeling, localization, and content federation capabilities. Their platform supports enterprise-scale deployments with a focus on ease of implementation and high performance. The company is headquartered in Germany and has been operational since 2017, with a domain registered in 2022 reflecting its growth trajectory. Technically, Hygraph employs a modern web stack including React and Next.js, hosted likely on Vercel, with extensive use of analytics and marketing tools such as Google Tag Manager, Hotjar, and various tracking pixels. The website demonstrates excellent performance, mobile optimization, and accessibility, reflecting a mature digital infrastructure. Privacy and cookie compliance are well addressed with a comprehensive privacy policy and consent mechanisms. From a security perspective, the site enforces HTTPS, uses appropriate security headers, and shows no signs of vulnerabilities or exposed sensitive data. However, there is room for improvement by enabling DNSSEC and publishing dedicated security and incident response policies. The WHOIS data aligns well with the business profile, showing consistent registration details and no privacy protection, enhancing trustworthiness. Overall, Hygraph presents a professional, secure, and compliant online presence with strong business credibility and technical maturity. Strategic recommendations include enhancing security transparency and continuing to monitor privacy compliance to maintain high trust levels.

75
85
2
85
72
60
100
headlesscmsgraphqlsaascontentmanagemententerprise+3 more
ReactNext.jsGraphQLCloudflare DNS+9
2025-09-05T02:52:31.836Z
spiny.ai favicon

Spiny.ai

spiny.ai

68
TechnologyUnited StatessmallMEDIUM

Spiny.ai is a technology company specializing in AI-powered revenue analytics and header bidding solutions tailored for digital publishers. Their platform enables publishers to optimize ad revenue, web traffic, and subscriber growth through real-time editorial insights, monetization tools, and comprehensive analytics. Positioned as an innovative SaaS provider in the digital publishing sector, Spiny.ai targets media companies and content creators seeking to maximize revenue and operational efficiency. The company was founded in 2020 and operates primarily in the US market. Technically, the website is built on modern frameworks such as Next.js and React, leveraging Cloudflare for DNS and CDN services. It integrates multiple marketing and analytics tools including HubSpot, Hotjar, and Google Tag Manager, indicating a mature digital marketing infrastructure. The site is mobile-optimized, fast-loading, and SEO-friendly, reflecting a high level of digital maturity. From a security perspective, the site enforces HTTPS and avoids exposing sensitive data. However, it lacks explicit security headers and published security policies or incident response contacts, which are areas for improvement. The domain WHOIS data shows privacy protection typical for startups, with no suspicious indicators. Privacy and cookie policies are present and appear GDPR compliant. Overall, Spiny.ai presents a professional, trustworthy online presence with strong business credibility and technical implementation. Strategic recommendations include enhancing security headers, publishing a security policy, enabling DNSSEC, and adding vulnerability disclosure information to further strengthen trust and compliance.

30
68
17
85
72
85
100
digitalpublishingadmonetizationcontentanalyticswritermanagementai+2 more
ReactNext.jsCloudflare DNSHubSpot analytics and marketing scripts+3
2025-09-05T01:40:00.897Z
cheq.ai favicon

CHEQ AI Technologies Ltd.

cheq.ai

83
TechnologyUnited StateslargeLOW

CHEQ AI Technologies Ltd. is a global leader in Go-to-Market Security, providing advanced solutions to protect the digital customer journey by distinguishing legitimate users from malicious actors including humans, agents, and bots. The company offers a comprehensive platform integrating traffic, threat, and identity intelligence to safeguard marketing investments, ensure compliance, and prevent fraud and abuse. With a strong market presence and over 15,000 brands trusting their services, CHEQ operates primarily in the technology sector with a focus on B2B SaaS offerings. Technically, the website is built on WordPress and leverages a modern tech stack including HubSpot, Google Tag Manager, Facebook Pixel, LinkedIn Insight Tag, and Clearbit for marketing and analytics. The site is hosted with Cloudflare DNS and uses HTTPS, ensuring secure communications. Mobile optimization and SEO practices are good, though accessibility features are basic. The website lacks explicit privacy and cookie policies in the provided content, which impacts privacy compliance scoring. From a security perspective, CHEQ demonstrates good practices such as HTTPS enforcement and domain transfer protection. However, DNSSEC is not enabled, and no security headers were detected in the provided data. There is no visible security policy or incident response contact information, and no vulnerability disclosure or security.txt file is present. These gaps suggest room for improvement in transparency and security posture. Overall, the website is professional, trustworthy, and content-rich, targeting businesses concerned with marketing security and fraud prevention. The domain registration data aligns well with the business claims, supporting legitimacy. Strategic recommendations include enhancing privacy compliance by publishing clear policies, enabling DNSSEC, implementing security headers, and providing vulnerability disclosure information to strengthen trust and security culture.

80
100
47
98
75
85
100
go-to-marketsecuritymarketingsecurityfraudpreventiondataprivacycompliance+2 more
WordPress 6.7.2HubSpot scriptsGoogle Tag ManagerFacebook Pixel+4

Partner Domains:

deduce.com
subsidiary
clickcease.com
subsidiary

+2 more partners

2025-09-05T00:35:58.987Z
fraudblocker.com favicon

Fraud Blocker

fraudblocker.com

65
TechnologyUnited StatessmallMEDIUM

Fraud Blocker is a small technology company specializing in click fraud protection software designed to save advertisers money by blocking fraudulent clicks on Google Ads. The company positions itself as a leading provider in this niche, targeting advertisers and digital marketing agencies seeking to improve ad campaign efficiency. Founded in 2019, the business leverages a SaaS model to deliver proprietary fraud detection technology. The website reflects a professional and consistent brand image with good content quality and clear messaging focused on its core services. Technically, the website is built on WordPress using the GeneratePress theme and Elementor page builder, incorporating modern SEO and analytics tools such as Yoast SEO and Google Tag Manager. Hosting and DNS services involve Cloudflare, enhancing performance and security. The site is mobile-optimized and performs moderately well, though accessibility features are basic. Security posture is solid with HTTPS enabled and domain registration locked against unauthorized changes, but DNSSEC is not enabled, and no explicit security or incident response policies are published. From a security and compliance perspective, the site lacks visible privacy, cookie, and terms of service policies, which impacts privacy compliance scores. No vulnerability disclosure or security.txt files are present, and no data protection officer contact is provided. Contact information is clearly available, including a company email and phone number, along with active social media profiles. Overall, the site is safe, professional, and trustworthy, with no adult or questionable content detected. The overall risk assessment is moderate with recommendations to improve privacy compliance by publishing policies and implementing cookie consent, enabling DNSSEC, and adding security and incident response documentation to enhance trust and regulatory adherence.

25
80
2
72
75
85
100
clickfraudfrauddetectionadvertisinggoogleadsdigitalmarketing+2 more
WordPressElementorYoast SEOGoogle Tag Manager+1
2025-09-04T23:21:49.896Z
copymatic.ai favicon

Copymatic.ai

copymatic.ai

64
TechnologyN/amediumMEDIUM

Copymatic.ai is a technology company specializing in AI-powered content generation tools designed to help marketers, content creators, and businesses produce high-quality copy quickly and efficiently. The platform offers a suite of AI writing tools including long-form article generation, SEO optimization, and digital ad copy creation, positioning itself as a competitive SaaS solution in the AI content creation market. The company was founded in 2021 and maintains a medium-sized digital presence with consistent branding and a professional website. Technically, the website is built on WordPress with Bootstrap and jQuery, leveraging modern marketing and analytics tools such as Google Tag Manager, Facebook Pixel, TikTok Pixel, Hotjar, and others. The site is hosted with Cloudflare DNS and uses HTTPS with a valid SSL certificate, ensuring secure communications. The site is moderately optimized for performance and mobile responsiveness, with good SEO practices and accessibility features. From a security perspective, the site enforces HTTPS and uses secure forms with CSRF tokens. However, it lacks visible security headers like Content-Security-Policy and DNSSEC is not enabled. No vulnerabilities or exposed sensitive data were detected. Privacy compliance is partially addressed with a comprehensive privacy policy and terms of service, but no explicit cookie consent mechanism was found. Contact information is primarily via contact forms and social media channels, with no direct emails or phone numbers publicly listed. Overall, Copymatic.ai presents a trustworthy and professional online presence with a strong business model and technical foundation. Strategic improvements in security headers, cookie consent, and public incident response policies would enhance its security posture and compliance standing.

55
58
2
70
75
65
100
aicopywritingcontentwritingsaasmarketing+2 more
jQueryBootstrap 3.3.7SweetAlertGoogle Tag Manager+5
2025-09-04T22:17:38.449Z
bwfbadminton.com favicon

Badminton World Federation

bwfbadminton.com

61
OtherN/asmallMEDIUM

The BWF Fansite is a niche sports fan platform dedicated to badminton enthusiasts, providing news, event information, and fan engagement related to the Badminton World Federation. The website is well-established, with a domain age dating back to 2009, indicating a mature presence in the badminton fan community. The business model focuses on content delivery and community engagement rather than direct commercial transactions. The site targets badminton fans globally, offering relevant and up-to-date information in English. Technically, the website leverages a modern technology stack including Vue.js, Vuetify, and WordPress CMS, supported by Cloudflare DNS services. The site implements cookie consent management via Cookiebot, demonstrating compliance with GDPR and privacy regulations. Performance is moderate with good mobile optimization and basic accessibility features. SEO practices are adequately implemented with proper meta tags and social media integration. From a security perspective, the site enforces HTTPS and employs clientTransferProhibited status on the domain to prevent unauthorized transfers. However, DNSSEC is not enabled, and some recommended security headers like Content-Security-Policy are missing, which could be improved to enhance protection against common web vulnerabilities. No critical security issues or WAF blocks were detected, and the site maintains a good security posture overall. Overall, the website is professional, trustworthy, and compliant with privacy regulations, though it lacks explicit contact information and formal security policies. Strategic recommendations include enabling DNSSEC, adding comprehensive security headers, and publishing incident response and vulnerability disclosure information to further strengthen trust and security maturity.

35
95
2
40
65
70
100
badmintonsportsfansitebwfcookieconsent+4 more
jQueryVue.jsAxiosVuetify+2
2025-09-04T18:31:44.960Z
bridgerpay.com favicon

BridgerPay

bridgerpay.com

71
FinanceUnited KingdommediumMEDIUM

BridgerPay is a UK-based payment operations platform founded in 2018, offering businesses a comprehensive solution to optimize payment acceptance, routing, and reconciliation across multiple payment providers. Positioned as a B2B SaaS provider in the finance and technology sectors, BridgerPay targets businesses seeking to streamline their payment processes and reduce operational complexity. The website reflects a professional and consistent brand image with good content quality and clear navigation. Technically, the site is built using modern Angular framework with static site generation via Scully, enhanced by Firebase App Check and Google reCAPTCHA Enterprise for security. Hosting and DNS services are managed through Cloudflare, ensuring fast performance and robust SSL/TLS encryption. The site demonstrates good mobile optimization and basic accessibility features, with SEO best practices implemented. From a security perspective, BridgerPay employs strong HTTPS enforcement, security headers, and integrates anti-bot and anti-fraud technologies. The presence of PCI DSS certification and secure domain registration practices further strengthen its security posture. However, the absence of a public vulnerability disclosure policy and incident response contact details suggests areas for improvement. Overall, BridgerPay presents a low-risk profile with a mature digital presence and solid security foundations. Strategic recommendations include enabling DNSSEC, publishing a security.txt file, and enhancing incident response transparency to further build trust and compliance.

55
68
35
65
75
85
100
paymentpaymentoperationspaymentplatformb2bfinance+2 more
AngularScully (static site generator)Firebase App CheckGoogle reCAPTCHA Enterprise+2
2025-08-04T15:57:36.194Z